wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

Cybersecurity Quiz

Total questions: 62

Worksheet time: 5hrs 10mins

Name
Class
Date
1.

What is a threat in the context of system security?

a)

A harmless event with no impact on a system

b)

Any circumstance or event with the potential to adversely affect a system

c)

A positive change in system performance

d)

An improvement in data security

2.

What does spoofing involve?

a)

Modifying data on a disk

b)

Pretending to be something or someone other than yourself

c)

Claiming responsibility for an action

d)

Providing authorized information

3.

What is the purpose of a Distributed Denial of Service (DDoS) attack?

a)

To improve system performance

b)

To involve multiple computers sending requests

c)

To enhance user access

d)

To secure data from unauthorized access

4.

What is data destruction?

a)

The process of creating backups

b)

The process of destroying data so it is completely unreadable

c)

The process of encrypting data

d)

The process of sharing data securely

5.

What is an inside attack?

a)

An attack initiated by an outsider

b)

An attack initiated by an insider within a security perimeter

c)

An attack that occurs outside the network

d)

An attack that enhances system security

6.

What is social engineering primarily used for?

a)

Building secure networks

b)

Attacking information systems

c)

Developing software

d)

Enhancing user experience

7.

What is spear phishing?

a)

A type of malware

b)

A type of phishing targeting specific groups

c)

A method to secure emails

d)

A software development technique

8.

What is the main purpose of malware?

a)

To enhance computer performance

b)

To infiltrate or damage a computer system

c)

To create backup files

d)

To improve software usability

9.

What is a boot-sector virus?

a)

A virus that affects only email systems

b)

A virus that resides in the first sector of a disk or USB drive

c)

A virus that enhances boot speed

d)

A virus that protects the boot sector

10.

How does a worm differ from a virus?

a)

Worms require user intervention to replicate

b)

Worms do not require user intervention to self-replicate

c)

Worms are harmless

d)

Worms enhance system security

11.

What is a rootkit typically used for?

a)

To encrypt a victim's entire system

b)

To provide a hacker privileged access to a system

c)

To restrict data communication traffic

d)

To protect network resources from outside threats

12.

What does ransomware do to a victim's system?

a)

It restricts data communication traffic

b)

It provides privileged access to hackers

c)

It encrypts the entire system or specific files

d)

It allows control of access based on predefined conditions

13.

What is the primary function of a firewall?

a)

To encrypt a victim's entire system

b)

To provide a hacker privileged access to a system

c)

To restrict data communication traffic to and from a network

d)

To allow control of access based on predefined conditions

14.

What is the role of a proxy in a network?

a)

To encrypt a victim's entire system

b)

To reside between a user's computer and the Internet

c)

To restrict data communication traffic

d)

To provide a hacker privileged access to a system

15.

What is a third party in a supply chain responsible for?

a)

Encrypting a victim's entire system

b)

Providing a product or service in support of an organization's objectives

c)

Restricting data communication traffic

d)

Protecting network resources from outside threats

16.

What does Network Access Control (NAC) allow?

a)

Encrypting a victim's entire system

b)

Control of access based on predefined conditions

c)

Providing a hacker privileged access to a system

d)

Residing between a user's computer and the Internet

17.

What is the most common authentication factor?

a)

Something you have

b)

Something you are

c)

Something you know

d)

Somewhere you are

18.

What is a drawback of Single Sign-On (SSO)?

a)

It simplifies user access management.

b)

It requires multiple passwords for different servers.

c)

If an account is compromised, a hacker can access multiple servers.

d)

It enhances security by limiting access to one server.

19.

What protocol allows clients to access a network remotely by connecting to a RADIUS client?

a)

Hypertext Transfer Protocol (HTTP)

b)

User Datagram Protocol (UDP)

c)

File Transfer Protocol (FTP)

d)

Simple Mail Transfer Protocol (SMTP)

20.

What is the purpose of the Accounting phase in network security?

a)

To encrypt user data

b)

To log user activity and track usage

c)

To provide user authentication

d)

To design network architecture

21.

What is the main focus of application security?

a)

Enhancing user interface design

b)

Ensuring the integrity of software

c)

Increasing application speed

d)

Reducing software cost

22.

What is the process of checking code for functionality and bugs during the Testing phase called?

a)

Debugging

b)

Fuzzing

c)

Compiling

d)

Encrypting

23.

What is a common attack that uses JavaScript to inject malicious code into a web application?

a)

SQL Injection

b)

Phishing

c)

Cross site scripting (XSS)

d)

Denial of Service (DoS)

24.

What is the purpose of applying software patches?

a)

To enhance the user interface

b)

To improve application speed

c)

To remove vulnerabilities

d)

To increase storage capacity

25.

What should be done to applications that are not necessary according to application hardening practices?

a)

They should be updated regularly

b)

They should be disabled for users

c)

They should be encrypted

d)

They should be backed up

26.

What are the two levels at which files can be encrypted?

a)

In storage and during transit

b)

During download and upload

c)

In RAM and ROM

d)

In the cloud and on-premises

27.

What does an intrusion detection system (IDS) do?

a)

Encrypts data on the network

b)

Detects suspicious activity and alerts administrators

c)

Increases network speed

d)

Monitors user activity for productivity

28.

What is the role of a Trusted Platform Module (TPM)?

a)

To store cryptographic keys

b)

To increase processing speed

c)

To manage network traffic

d)

To provide additional storage

29.

What is the function of BitLocker?

a)

To compress files for storage

b)

To perform Full Disc Encryption

c)

To monitor network traffic

d)

To manage user accounts

30.

What does the NIDS analyze?

a)

User login attempts

b)

Network traffic

c)

File download speeds

d)

System boot times

31.

What is the primary function of firewalls in cybersecurity?

a)

To increase internet speed

b)

To protect computer systems and networks from outside systems

c)

To enhance graphics performance

d)

To manage user passwords

32.

What type of firewall is installed on a single system to protect it?

a)

Hardware-based firewall

b)

Network-based firewall

c)

Software-based firewall

d)

Cloud-based firewall

33.

Which security zone is designed for visitors to your office location?

a)

Private zone

b)

Public zone

c)

Guest zone

d)

DMZ

34.

What is the role of a reverse proxy?

a)

To block all incoming traffic

b)

To allow a system on the Internet to send a request to internal systems

c)

To increase bandwidth

d)

To encrypt data

35.

What is the DMZ in network security?

a)

A secure area for storing data

b)

An area between two firewalls allowing selected traffic to pass

c)

A zone for guest access

d)

A backup server location

36.

What is the first step to prepare for handling security incidents within an organization?

a)

Conduct a security audit

b)

Make sure that you have an incident response team in place

c)

Train all employees on cybersecurity

d)

Install the latest antivirus software

37.

Who is the first individual to be notified of an incident?

a)

The CEO

b)

The IT manager

c)

The first responder

d)

The system administrator

38.

What is an event in the context of cybersecurity?

a)

A planned system update

b)

An observable occurrence in a system and/or network

c)

A scheduled backup

d)

A routine security check

39.

What does post-incident analysis involve?

a)

Installing new software

b)

Conducting a security drill

c)

The postmortem analysis of an incident

d)

Hiring new staff

40.

What percentage of cyber-attacks could be defeated by implementing basic cyber hygiene?

a)

50%

b)

70%

c)

90%

d)

100%

41.

What does cyber hygiene refer to?

a)

The process of cleaning computer hardware

b)

Practices and steps that maintain system health and improve online security

c)

The use of antivirus software

d)

Regularly updating social media passwords

42.

Why is it important to periodically back up your data?

a)

To increase internet speed

b)

To ensure data can be recovered if lost

c)

To reduce computer memory usage

d)

To improve software performance

43.

What is the starting point for all future baseline assessments?

a)

Configuration management

b)

Baseline configuration

c)

Data backup

d)

Cyber hygiene

44.

What is the term 'site reliability' referring to?

a)

Data backup frequency

b)

Service availability

c)

Cyber hygiene practices

d)

Software updates

45.

What is the main benefit of a full backup?

a)

It only backs up new files

b)

It does not clear the archive bit

c)

It backs up all files and folders

d)

It requires less storage space

46.

What do incremental backups do?

a)

Backup all data regardless of changes

b)

Backup only new data since the last backup

c)

Backup data and clear the archive bit

d)

Backup data without clearing the archive bit

47.

What is a key step in testing a disaster recovery plan?

a)

Skipping the testing phase

b)

Testing the plan for effectiveness

c)

Testing only once a year

d)

Testing without a team

48.

What is the primary objective of COMPUSEC?

a)

To increase data redundancy

b)

To employ countermeasures for confidentiality, integrity, and availability

c)

To enhance user interface design

d)

To improve software speed

49.

What does the concept of data integrity ensure?

a)

Data is encrypted at all times

b)

Data is accessible to everyone

c)

Data received is the same as data sent

d)

Data is stored in multiple locations

50.

What is the purpose of patching a system?

a)

To increase system speed

b)

To reduce vulnerabilities and chances of attack

c)

To add new features

d)

To decrease system size

51.

What is the purpose of the TEMPEST program?

a)

To enhance user experience

b)

To identify vulnerabilities in information systems

c)

To increase data storage capacity

d)

To improve network speed

52.

What does the Red/Black Principle represent in cryptographic systems?

a)

The combination of encrypted and plain-text information

b)

The separation of sensitive and non-sensitive data

c)

The meticulous separation of signals containing sensitive or classified plain-text information from those carrying encrypted information

d)

The integration of all classified information into one system

53.

What are the three core security disciplines in Information Protection?

a)

Personnel Security, Industrial Security, and Cyber Security

b)

Personnel Security, Industrial Security, and Information Security

c)

Personnel Security, Cyber Security, and Data Security

d)

Industrial Security, Cyber Security, and Data Security

54.

What does the Freedom of Information Act (FOIA) provide?

a)

The right to access classified military information

b)

The right to request access to records from any federal agency

c)

The right to access personal data of government employees

d)

The right to access international security documents

55.

What is required for an individual to access classified information?

a)

A general interest in the information

b)

A signed Standard Form (SF) 312 and a need to know the information

c)

A verbal agreement with a supervisor

d)

A temporary clearance from any federal agency

56.

What level of protection does Top-Secret information require?

a)

Minimal protection

b)

Moderate protection

c)

The highest degree of protection

d)

No protection

57.

What is the purpose of Operations Security (OPSEC)?

a)

To increase the visibility of Air Force missions

b)

To reduce the vulnerability of Air Force missions by eliminating or reducing successful adversary collection and exploitation of critical information

c)

To enhance the public's access to Air Force mission details

d)

To share critical information with allied forces

58.

What is the primary objective of the COMSEC program?

a)

To promote social media usage

b)

To ensure the employment of measures and controls to deny unauthorized persons information derived from information systems of the United States Government

c)

To encourage public sharing of military operations

d)

To simplify government communication systems

59.

What is encryption?

a)

The process of making data easily readable

b)

The conversion of data into a form that cannot be easily understood by unauthorized people

c)

The deletion of data from a system

d)

The storage of data in a secure location

60.

What does cryptography involve?

a)

The use of coding systems to encrypt and decrypt information

b)

The physical destruction of data

c)

The manual copying of data

d)

The public sharing of information

61.

What is the role of crypto analysis?

a)

To create new coding systems

b)

To protect data from unauthorized access

c)

To break a coding system so that the information can be revealed to an unauthorized user

d)

To encrypt data for secure transmission

62.

What does TRANSEC aim to protect against?

a)

Unauthorized data deletion

b)

Interception and exploitation by means other than crypto analysis

c)

Data duplication

d)

Public data sharing